Skip to content

chore: bump mint to 1.10.1 for EEF-CVE-2026-82672 - #234

Merged
zachdaniel merged 1 commit into
ash-project:mainfrom
C-Sinclair:fix-hex-audit
Sep 21, 2026
Merged

zachdaniel merged 1 commit into
ash-project:mainfrom
C-Sinclair:fix-hex-audit

Conversation

@C-Sinclair

Copy link
Copy Markdown
Contributor

mix hex.audit fails on main: mint 1.10.0 carries EEF-CVE-2026-82672 (CVE-2026-82672, GHSA-rj5m-69wp-cxq9). This bumps the mix.lock entry to mint 1.10.1, which clears the advisory. mint is a transitive dependency, so mix.exs is unchanged.

@C-Sinclair
C-Sinclair marked this pull request as ready for review September 21, 2026 15:24
@zachdaniel
zachdaniel merged commit 9386682 into ash-project:main Sep 21, 2026
51 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants